| Column Name | Column Data Type |
analyzer_arn Required Input Column
The ARN of the analyzer used to generate the finding recommendation. | VARCHAR |
id Required Input Column
The unique ID for the finding recommendation. | VARCHAR |
_aws_profile Input Column
The AWS profile defines the AWS identity used. It can be defined via credentials or by assuming a IAM role. | STRUCT( "type" VARCHAR, "name" VARCHAR, "account_id" VARCHAR, "via_profile_name" VARCHAR, "assumed_role_arn" VARCHAR, "organization" STRUCT( "account_name" VARCHAR, "id" VARCHAR, "tags" STRUCT( "key" VARCHAR, "value" VARCHAR )[], "master_account" STRUCT( "id" VARCHAR, "email" VARCHAR ), "parents" STRUCT( "type" VARCHAR, "id" VARCHAR, "name" VARCHAR, "tags" STRUCT( "key" VARCHAR, "value" VARCHAR )[] )[] ) ) |
Show child fields- _aws_profile.account_id
The AWS account id
- _aws_profile.assumed_role_arn
The ARN of the assumed role
- _aws_profile.name
The unique name of the profile.
- _aws_profile.organization
Information about this profile's membership in the AWS organization. Show child fields- _aws_profile.organization.account_name
The name of account speciifed by the organization
- _aws_profile.organization.id
The organization id
- _aws_profile.organization.master_account
Show child fields- _aws_profile.organization.master_account.email
The organization master account email address
- _aws_profile.organization.master_account.id
The organization master account id
- _aws_profile.organization.parents[]
Show child fields- _aws_profile.organization.parents[].id
The id of the parent
- _aws_profile.organization.parents[].name
The name of the parent
- _aws_profile.organization.parents[].tags[]
Show child fields- _aws_profile.organization.parents[].tags[].key
- _aws_profile.organization.parents[].tags[].value
- _aws_profile.organization.parents[].type
The type of parent can be an organization unit or a root
- _aws_profile.organization.tags[]
Show child fields- _aws_profile.organization.tags[].key
- _aws_profile.organization.tags[].value
- _aws_profile.type
The type of profile, either 'credentials' or 'assumed_role'
- _aws_profile.via_profile_name
This IAM role for this profile is assumed by first utilizing another profile with this name to obtain credentials.
|
completed_at
The time at which the retrieval of the finding recommendation was completed. | TIMESTAMP_S |
error
Detailed information about the reason that the retrieval of a recommendation for the finding failed. | STRUCT( "code" VARCHAR, "message" VARCHAR ) |
Show child fields- error.code
The error code for a failed retrieval of a recommendation for a finding.
- error.message
The error message for a failed retrieval of a recommendation for a finding.
|
recommendation_type
The type of recommendation for the finding. | VARCHAR |
recommended_steps
A group of recommended steps for the finding. | STRUCT( "unused_permissions_recommended_step" STRUCT( "policy_updated_at" TIMESTAMP_S, "recommended_action" VARCHAR, "recommended_policy" VARCHAR, "existing_policy_id" VARCHAR ) )[] |
Show child fields- recommended_steps[]
Show child fields- recommended_steps[].unused_permissions_recommended_step
A recommended step for an unused permissions finding. Show child fields- recommended_steps[].unused_permissions_recommended_step.existing_policy_id
If the recommended action for the unused permissions finding is to detach a policy, the ID of an existing policy to be detached.
- recommended_steps[].unused_permissions_recommended_step.policy_updated_at
The time at which the existing policy for the unused permissions finding was last updated.
- recommended_steps[].unused_permissions_recommended_step.recommended_action
A recommendation of whether to create or detach a policy for an unused permissions finding.
- recommended_steps[].unused_permissions_recommended_step.recommended_policy
If the recommended action for the unused permissions finding is to replace the existing policy, the contents of the recommended policy to replace the policy specified in the existingPolicyId field.
|
resource_arn
The ARN of the resource of the finding. | VARCHAR |
started_at
The time at which the retrieval of the finding recommendation was started. | TIMESTAMP_S |
status
The status of the retrieval of the finding recommendation. | VARCHAR |